CVE-2022-48246: High severity android vulnerability
Published May 9, 2023
·Updated
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges.
Affected Software
34 affected components
All of the following
Any of the following
Google Android=10.0
Google Android=11.0
Google Android=12.0
Google Android=13.0
Any of the following
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Google Android=10.0
Google Android=11.0
Google Android=12.0
Google Android=13.0
UNISOC S8000
UNISOC Sc7731e
UNISOC Sc9832e
UNISOC Sc9863a
UNISOC T310
UNISOC T606
UNISOC T610
UNISOC T612
UNISOC T616
UNISOC T618
UNISOC T760
UNISOC T770
UNISOC T820
Event History
May 9, 2023
CVE Published
via MITRE·01:21 AM
Data Sourced
via MITRE·01:21 AM
Description
Data Sourced
02:15 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-48246?
CVE-2022-48246 has a moderate severity as it allows local escalation of privilege without additional execution privileges.
2
How do I fix CVE-2022-48246?
To fix CVE-2022-48246, ensure to apply the latest security updates provided by your Android device manufacturer.
3
Which versions of Android are affected by CVE-2022-48246?
CVE-2022-48246 affects Android versions 10.0, 11.0, 12.0, and 13.0.
4
Which devices are vulnerable to CVE-2022-48246?
Devices running Android 10.0 to 13.0 are vulnerable to CVE-2022-48246 unless patched by the manufacturer.
5
Can CVE-2022-48246 be exploited remotely?
CVE-2022-48246 requires local access to the device to be exploited, making it less likely to be used in remote attacks.